Enterprise-grade, fully customisable security platforms that run entirely on your infrastructure. Deploy on bare metal, Docker, Kubernetes, cloud VMs, virtual environments, or air-gapped networks. Every product is self-hosted, open to customisation, and built for organisations of any size.
🛡
Umbra SIEM Beta
Full security operations platform with 12 enterprise modules, 93+ UI views, and 6 query languages. UEBA, SOAR, deception fabric, breach and attack simulation, ITDR, OT/ICS monitoring, network forensics, and multi-SIEM federation across Splunk, QRadar, Chronicle, and Sentinel.
Ships with a Standalone Native backend — full feature parity on SQLite alone. All 94 API routes, all 3,132 endpoints, zero external dependencies. Fully customisable per tenant.
Learn More About Umbra
🖥
SinonSentinel Coming Soon
Unified MSP and IT security management with 50 features across 9 domains. RMM, EDR, PAM, SOAR, backup and disaster recovery, compliance drift detection, chaos engineering, digital twin simulation, and agentic AI-driven remediation.
White-labelled per client with configurable dashboards, branded portals, custom workflows, and per-tenant feature toggles. Built for MSPs and MSSPs of any size — from solo consultants to large operations.
Learn More About SinonSentinel
🔍
UmbraShield Coming Soon
All-in-one application security platform with 50+ features across 8 domains. SAST (7 languages), SCA (9 ecosystems), DAST, secrets detection, container scanning, IaC scanning, runtime protection, AI-powered pentesting, and auto-triage with ML-based severity assessment.
Security knowledge graph, PR scorecards, developer champions programme, 30+ integrations, and an AI Security Copilot. Fully customisable per tenant with custom scan policies and triage workflows.
Learn More About UmbraShield
🎯
UmbraRisk Coming Soon
Self-hosted threat modelling and risk management platform with 44 features across 8 domains. STRIDE threat modelling, attack tree analysis, data flow diagrams, risk registers, compliance mapping (72 frameworks), CI/CD security gates, and AI-driven threat auto-generation.
Attack path visualisation, security posture scoring, real-time collaborative editing, security questionnaires, and document analysis. Fully customisable per tenant with custom threat libraries and playbooks.
Learn More About UmbraRisk
🔑
SinonAuth Beta
Self-hosted Active Directory and identity platform on Linux — full AD Domain Services, LDAP, Kerberos V5 KDC, NTLM, RADIUS, Certificate Authority, OAuth 2.0/OIDC, SAML 2.0, MFA (6 methods), SCIM, Conditional Access, PIM, and security tiers.
Multi-master replication with USN tracking, domain join for Windows and Linux, AD-compatible schema, Group Policy, Azure Entra ID and AWS Cognito sync. No Windows Server licence required.
Learn More About SinonAuth
🎓
SecureMinds AI Coming Soon
Security awareness training platform with 31 courses, 60+ assessments, phishing simulation, and compliance reporting. Closed-loop training cycle from assessment through remediation to measurable improvement.
Customisable branding, proprietary course uploads, role-based learning paths, and branded certificates. Multi-database support: PostgreSQL, MySQL, MSSQL, or Elasticsearch.
Learn More About SecureMinds AI
📦
SinonForge Beta
Self-hosted Git platform with pull requests, CI/CD pipelines, issue tracking, wiki, and 4 package registries (npm, Docker, PyPI, Maven). Built-in security scanning (SAST, secrets, dependencies), branch protection, and 94 API routes.
Multi-tenant with white-label branding, organisations, team hierarchies, role-based access, OAuth2/SAML/LDAP authentication, and 6 deployment modes including air-gapped. Your code never leaves your infrastructure.
Learn More About SinonForge
💾
SinonStore Beta
S3-compatible object storage with 12 enterprise features: access pattern intelligence, immutable audit log, ransomware shield, DLP scanning, compliance vault mode, smart tiering, point-in-time recovery, cross-tenant sharing, object lambda, batch operations, and data sovereignty.
Full S3 API compatibility with presigned URLs, multipart uploads, versioning, lifecycle policies, and bucket replication. Multi-tenant with per-tenant quotas and 6 deployment modes.
Learn More About SinonStore
📹
SinonMeet Beta
Self-hosted unified communications on WebRTC + mediasoup SFU with server-side FFmpeg recording, on-prem Whisper transcription, AI summaries via local LLM, VoIP phone system, contact centre with IVR, virtual office with spatial audio, and persistent chat.
HMAC-chained audit log, DLP, eDiscovery, legal holds, federation with Discord/Teams/Matrix/Slack, per-participant engagement metrics with named badges, and white-label branding per tenant and org unit.
Learn More About SinonMeet
📧
SinonMail Beta
Self-hosted enterprise mail server with 42 features across 8 categories. SMTP, IMAP, POP3, CalDAV and CardDAV implemented natively — plus DKIM signing with automated key rotation, SPF, DMARC, OpenPGP and S/MIME encryption, Bayesian anti-spam, and ClamAV antivirus.
Tamper-evident hash-chained audit log, DLP with document fingerprinting and archive scanning, ransomware scanning, data classification with send restrictions, and Exchange-style transport rules. Migrate from IMAP, mbox, Maildir, EWS, Microsoft Graph or PST. Hierarchical sub-tenants with per-tenant branding and licensing.
Learn More About SinonMail
🚨
SinonAlert Beta
Self-hosted detection and response platform ingesting from 55 connector types and evaluating 24 rule types — beaconing, impossible travel, DGA, honeypot access, behavioural baselines, and multi-source correlation. Ships 468 starter rules with MITRE ATT&CK coverage mapping.
Imports your ElastAlert2 and Sigma rules with translation-fidelity reporting — it names what would not convert instead of dropping it silently. 35 pre-built actions, GitOps detection-as-code, hunt notebooks, a Test Lab for replaying rules against historical events, and a hash-chained audit log with an independent verifier.
Learn More About SinonAlert
☁
SinonPosture Coming Soon
Self-hosted cloud security posture management (CSPM/SSPM) with 30 provider integrations across cloud, SaaS, identity, network appliances, virtualisation and databases. 1,121 built-in checks mapped to 20 compliance frameworks including SOC 2, PCI DSS 4.0, ISO 27001, NIST, CMMC and FedRAMP.
Cross-provider attack-path graph, drift detection, provider-API remediation for AWS/Azure/GCP/GitHub/Kubernetes, hash-chained audit and evidence bundles. Fully customisable per tenant with custom YAML checks.
Learn More About SinonPosture
🧱
SinonFirewall Beta
Self-hosted next-generation firewall spanning L3–L7 from one control plane. Stateful nftables filtering, NAT, Suricata IDS/IPS, nDPI application identification, TLS inspection, four VPN types (WireGuard, IPsec, OpenVPN, SSL-VPN), SD-WAN, and BGP/OSPF routing.
Database-compiled policy with atomic deploy and rollback, GitOps config sync, high availability, DNS/DHCP, WiFi controller and VoIP SBC. Read-only monitoring of third-party firewalls. Multi-tenant with per-tenant encrypted secrets.
Learn More About SinonFirewall
📰
VeritasFeed Beta
Self-hosted news and open-source intelligence platform ingesting from 9 source families — news APIs, social, RSS, web, chat, documents, email and threat-intel feeds. Per-source and per-article trust and political-bias scoring with a real on-prem NLP pipeline.
Fused cyber threat intelligence: IOC feeds, CVE/NVD sync, MITRE ATT&CK tagging, threat-actor tracking, YARA/Sigma, MISP and TAXII 2 export. Elasticsearch search and alerting. PostgreSQL row-level security tenant isolation.
Learn More About VeritasFeed
🔒
SinonVPN Beta
Self-hosted remote-access platform combining three VPN protocols (WireGuard, IKEv2/IPsec, OpenVPN) with an identity-aware SSH and RDP/VNC bastion. Session recording, just-in-time access with ephemeral credentials, and a built-in SSH certificate authority.
Live session risk scoring with auto-revoke, inline DLP, per-tenant envelope-encrypted vaulting, OIDC SSO with SCIM and MFA, and a hash-chained audit log with SIEM forwarding. Six deployment modes including air-gapped.
Learn More About SinonVPN